Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 82% confidence
- Finding
- The skill uses sensitive capabilities (environment variable access, local file reads, and network access) but does not declare corresponding permissions in a machine-readable way. That creates a transparency and policy-enforcement gap: users or orchestration systems may treat it as documentation-only while it can actually read credentials and make authenticated outbound requests.
